
EC-CouncilEthical Hacking Essentials
Domain 1Objective 2
Threats, Threat Sources, and Vulnerabilities EHE Practice Questions (Page 8)
Part of the Information Security and Ethical Hacking Foundations domain, which makes up ~16% of our current practice bank.
44questions here
9free pages
6concepts
Questions 36–40
- 36
A security analyst is explaining to management why a vulnerability with a low CVSS score still poses a significant risk. The vulnerability is a default password on a network printer that is accessible only from the internal network. Which reasoning is most accurate?
Select an answer first - 37
Which of the following scenarios best illustrates a threat in information security?
Select an answer first - 38
An organization is assessing potential threat sources. Which of the following correctly categorizes a threat source?
Select an answer first - 39
A company is deciding whether to invest in a vulnerability management program. They have a mix of technical, configuration, and human-factor vulnerabilities. Which statement best explains why addressing vulnerabilities is important even if no specific threat has been identified?
Select an answer first - 40
In the context of information security, what is the most accurate definition of a threat?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.